Secure Boot useless on hundreds of PCs from major vendors after key leak
ID: 38cf9ce5-31c3-5058-8a13-9ca4a1c180dc
STIX ID: report--38cf9ce5-31c3-5058-8a13-9ca4a1c180dc
Feed Name: The Register (Security)
This briefing highlights several recent security issues: Binarily disclosed a long-running UEFI Secure Boot supply-chain weakness (PKFail) allowing firmware-level Secure Boot bypass on devices from multiple major vendors; NIST notes ongoing exploitation of a 2012 Internet Explorer use-after-free; SpyTech suffered a breach exposing files from over 10,000 monitored devices; Cisco Talos reports a rise in ransomware largely tied to lack of MFA; and TracFone was fined $16M for API-related breaches that led to customer data theft and unauthorized port-outs.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
